Generate SCAP
The generate_scap.py script creates security compliance documents in SCAP (Security Content Automation Protocol) formats. These documents can be used with SCAP-compatible scanning tools.
Output Formats
Section titled “Output Formats”| Format | Description |
|---|---|
| SCAP | Complete SCAP 1.4 datastream (default) |
| XCCDF | eXtensible Configuration Checklist Description Format |
| OVAL | Open Vulnerability and Assessment Language |
Generate SCAP Documents
Section titled “Generate SCAP Documents”-
List available baselines
Terminal window ./scripts/generate_scap.py -l -
Generate SCAP for all rules
Terminal window ./scripts/generate_scap.py -
Generate for a specific baseline
Terminal window ./scripts/generate_scap.py -b stig -
Find your files
Output is saved to
build/:File Description *_xccdf.xmlXCCDF document *_oval.xmlOVAL document *.xmlComplete SCAP datastream
Command Reference
Section titled “Command Reference”| Flag | Description |
|---|---|
-l | List available baseline tags |
-b BASELINE | Generate for a specific baseline |
-x | Generate only XCCDF |
-o | Generate only OVAL |
-d FILE | Include DISA STIG references from file |
SCAP References
Section titled “SCAP References”Next Steps
Section titled “Next Steps”- Generate Mapping - Create custom framework mappings
- How to Generate Guidance - Generate documentation from your baseline